Vulnerability Details CVE-2023-43260
Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the admin panel.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.7%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2023-43260
-
cpe:2.3:h:milesight:ur32:-
-
cpe:2.3:h:milesight:ur32l:-
-
cpe:2.3:h:milesight:ur35:-
-
cpe:2.3:h:milesight:ur41:-
-
cpe:2.3:h:milesight:ur51:-
-
cpe:2.3:h:milesight:ur52:-
-
cpe:2.3:h:milesight:ur55:-
-
cpe:2.3:o:milesight:ur32_firmware:-
-
cpe:2.3:o:milesight:ur32l_firmware:-
-
cpe:2.3:o:milesight:ur32l_firmware:32.3.0.5
-
cpe:2.3:o:milesight:ur32l_firmware:32.3.0.7-r2
-
cpe:2.3:o:milesight:ur35_firmware:-
-
cpe:2.3:o:milesight:ur41_firmware:-
-
cpe:2.3:o:milesight:ur51_firmware:-
-
cpe:2.3:o:milesight:ur52_firmware:-
-
cpe:2.3:o:milesight:ur55_firmware:-